Page 205 of 2244 results (0.014 seconds)

CVSS: 7.8EPSS: 5%CPEs: 4EXPL: 1

02 Aug 2006 — Unspecified vulnerability in the "compression state handling" in Bom for Apple Mac OS X 10.3.9 and 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Zip archive. Vulnerabilidad no especificada en la "dirección del estado de la compresió" en Bom for Apple Mac OS X 10.3.9 y 10.4.7 permite a atacantes con la intervención del usuario provocar denegación de servicio (caida de aplicación) y posiblemente ejecutar código de su el... • http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html •

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

02 Aug 2006 — AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 stores reconnect keys in a world-readable file, which allows local users to obtain the keys and access files and folders of other users. AFP Server en Apple Mac OS X 10.3.9 y 10.4.7 almacena llaves de reconexión en un fichero world-readable, lo cual permite a usuarios locales obtener las llaves y el acceso a ficheros y carpetas de otros usuarios. • http://lists.apple.com/archives/security-announce/2006//Aug/msg00000.html •

CVSS: 8.8EPSS: 23%CPEs: 10EXPL: 3

31 Jul 2006 — WebCore in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted HTML that triggers a "memory management error" in WebKit, possibly due to a buffer overflow, as originally reported for the KHTMLParser::popOneBlock function in Apple Safari 2.0.4 using Javascript that changes document.body.innerHTML within a DIV tag. WebCore en Apple Mac OS X 10.3.9 y 10.4 hasta 10.4.7 permite a atacantes remotos provocar una ... • http://browserfun.blogspot.com/2006/07/mobb-31-safari-khtmlparserpoponeblock.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

06 Jul 2006 — The TIFFFetchAnyArray function in ImageIO in Apple OS X 10.4.7 and earlier allows remote user-assisted attackers to cause a denial of service (application crash) via an invalid tag value in a TIFF image, possibly triggering a null dereference. NOTE: This is a different issue than CVE-2006-1469. La función TIFFFetchAnyArray en ImageIO de Apple OS X 10.4.7 y versiones anteriores permiten al atacantes con la intervención del usuario causar una denegación de servicios (caída de la aplicación)a través de un valo... • http://www.security-protocols.com/sp-x31-advisory.php •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

12 May 2006 — MySQL Manager in Apple Mac OS X 10.3.9 and 10.4.6, when setting up a new MySQL database server, does not use the "New MySQL root password" that is provided, which causes the MySQL root password to be blank and allows local users to gain full privileges to that database. • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

12 May 2006 — BOM in Apple Mac OS X 10.3.9 and 10.4.6 allows attackers to overwrite arbitrary files via an archive that contains symbolic links. • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •

CVSS: 9.8EPSS: 9%CPEs: 2EXPL: 0

12 May 2006 — Mail in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to execute arbitrary code via an enriched text e-mail message with "invalid color information" that causes Mail to allocate and initialize arbitrary classes. • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •

CVSS: 8.8EPSS: 0%CPEs: 2EXPL: 0

12 May 2006 — Finder in Apple Mac OS X 10.3.9 and 10.4.6 allows user-assisted attackers to execute arbitrary code by tricking a user into launching an Internet Location item that appears to use a safe URL scheme, but which actually has a different and more risky scheme. • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

12 May 2006 — Integer underflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 allows context-dependent attackers to execute arbitrary code via unspecified vectors involving conversions from string to file system representation within (1) CFStringGetFileSystemRepresentation or (2) getFileSystemRepresentation:maxLength:withPath in NSFileManager, and possibly other similar API functions. • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •

CVSS: 8.8EPSS: 3%CPEs: 2EXPL: 0

12 May 2006 — Buffer overflow in the FTP server (FTPServer) in Apple Mac OS X 10.3.9 and 10.4.6 allows remote authenticated users to execute arbitrary code via vectors related to "FTP server path name handling." • http://lists.apple.com/archives/security-announce/2006/May/msg00003.html •